Malicious Lightning 2.6.2/2.6.3 released April 30 enable credential theft via hidden payload, leading to PyPI quarantine and ...
The more urgent issue is what our detection systems still cannot see — and side-channel attacks are making that gap visible.